Project

General

Profile

Actions

Feature #5668

open

eve: optionally add rule fast_pattern

Added by Philippe Antoine about 2 years ago. Updated about 2 years ago.

Status:
New
Priority:
Normal
Assignee:
Target version:
Effort:
Difficulty:
Label:

Description

like a configurable metadata...


Related issues 1 (1 open0 closed)

Related to Suricata - Task #5488: Suricon 2022 brainstormAssignedVictor JulienActions
Actions #1

Updated by Philippe Antoine about 2 years ago

  • Related to Task #5488: Suricon 2022 brainstorm added
Actions #2

Updated by Victor Julien about 2 years ago

  • Subject changed from Output fast_pattern used by rule in eve.json to eve: optionally add rule fast_pattern

I can see how this is a convenience, but I also think this is trivial to get from the --engine-analysis's rules.json currently. Yes it requires a bit of post-processing, but nothing to complex.

Actions

Also available in: Atom PDF